Skip to content
COOEY

FAIL › dossier

Multiple Vigor Routers

PRODUCT

· dossier confidence 50%

DrayTek faces significant security risks due to multiple remote code execution vulnerabilities in their Vigor routers.

PROFILE
CategoryNetworkingWhat they doManufactures and distributes networking equipment, specifically Vigor routers.
SECURITY POSTURE

High risk due to multiple remote code execution vulnerabilities.

Notable failures
  • CVE-2020-15415
  • CVE-2020-8515
Patterns: repeated unpatched RCE vulnerabilities
FAILURE HISTORY · 2
DATEEVENTSEVSUMMARY
2024-09-30 CVE-2020-15415 high DrayTek routers allow remote code execution via filename injection in Python script uploads.
2021-11-03 CVE-2020-8515 high DrayTek Vigor routers suffered a remote code execution flaw actively exploited in the wild, enabling attackers to take full control of network devices.
Open questions: What are the current patches for these vulnerabilities? · Is there a plan to update the affected firmware versions?
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-08-05 03:44:47.820700+00:00